vendor:
Audiotran
by:
Jacky
7.5
CVSS
HIGH
Buffer Overflow
CWE
Product Name: Audiotran
Affected Version From: 1.4.2001
Affected Version To: 1.4.2001
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP SP2
2010
Audiotran v1.4.1 direct RET BOF
This is a local buffer overflow vulnerability in Audiotran v1.4.1. The exploit allows an attacker to execute arbitrary code by overwriting the return address with a JMP ESP instruction from USER32.DLL.
Mitigation:
Apply the latest patch from the software vendor.